US2025307371A1PendingUtilityA1

Vehicle and verification system

Assignee: TOYOTA MOTOR CO LTDPriority: Mar 28, 2024Filed: Mar 24, 2025Published: Oct 2, 2025
Est. expiryMar 28, 2044(~17.7 yrs left)· nominal 20-yr term from priority
H04L 9/40H04L 9/3236H04L 9/3247H04L 67/12H04L 63/083G06F 21/57G06F 21/33
54
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

A vehicle includes a first control device including in-vehicle software and a second control device designed to be limitedly accessible by a specific administrator. The first control device and the second control device can communicate with each other. The second control device is configured to store a verification key for verifying validity of instruction information and perform instruction verification to verify the validity of the instruction information using the verification key. The first control device does not include the verification key.

Claims

exact text as granted — not AI-modified
What is claimed is: 
     
         1 . A vehicle comprising:
 a first control device including in-vehicle software; and   a second control device designed to be limitedly accessible by a specific administrator, wherein   the first control device and the second control device can communicate with each other,   the second control device is configured to:
 store a verification key for verifying validity of instruction information transmitted from outside of the second control device, the verification key being provided from the specific administrator in advance; and 
 perform instruction verification to verify the validity of the instruction information using the verification key, and 
   the first control device does not include the verification key.   
     
     
         2 . The vehicle according to  claim 1 , wherein
 the second control device is further configured to:
 receive the instruction information and a digital signature generated based on a secret key corresponding to the verification key; 
 execute signature verification to verify validity of the digital signature using the verification key; and 
 determine that the instruction information is valid when determining that the digital signature is valid. 
   
     
     
         3 . The vehicle according to  claim 1 , wherein
 the instruction information includes data instructing to update the in-vehicle software to be distributed to the vehicle.   
     
     
         4 . The vehicle according to  claim 1 , wherein
 the instruction information includes in-vehicle instruction information indicating an instruction transmitted from the in-vehicle software to hardware of the vehicle.   
     
     
         5 . The vehicle according to  claim 1 , wherein
 the instruction information includes cooperation instruction information indicating an instruction transmitted to the in-vehicle software from cooperative software cooperating with the in-vehicle software.   
     
     
         6 . The vehicle according to  claim 1 , wherein
 the in-vehicle software included in the first control device is designed to be rewritable by one or more users, and   the specific administrator includes a vehicle provider that provides the vehicle to the one or more users.   
     
     
         7 . The vehicle according to  claim 6 , wherein
 the second control device is further configured to store user information for identifying each of the one or more users,   the instruction information includes first user information transmitted to the second control device when a first user of the one or more users accesses the first control device, and   the second control device is further configured to:
 execute user verification that is the instruction verification for the first user information based on the user information; and 
 determine that the first user is an authorized user with valid access permission when determining that the first user information is valid. 
   
     
     
         8 . The vehicle according to  claim 7 , wherein
 the instruction information further includes cooperation instruction information indicating an instruction transmitted to the in-vehicle software from cooperative software cooperating with the in-vehicle software, and   the second control device is further configured to:
 store information of cooperation permission for each of the one or more users, the cooperation permission indicating a permissible range of cooperation between the cooperative software and the in-vehicle software; and 
 set the cooperation permission corresponding to the authorized user after the user verification. 
   
     
     
         9 . The vehicle according to  claim 8 , wherein
 in a case where the first control device is being accessed by the authorized user and the in-vehicle software receives the cooperation instruction information, the second control device is further configured to determine that the cooperation instruction information is valid when the cooperation instruction information is determined to be valid in the instruction verification and a content of the cooperation instruction information is included in the permissible range indicated by the cooperation permission corresponding to the authorized user.   
     
     
         10 . A verification system for verifying instruction information for operating a target device, the verification system comprising:
 a first control device, including software, provided with the target device; and   a second control device designed to be limitedly accessible by a specific administrator, wherein   the first control device and the second control device can communicate with each other,   the second control device is configured to:
 store a verification key to verify validity of instruction information transmitted from outside of the second control device, the verification key being provided from the specific administrator in advance; and 
 perform instruction verification to verify the validity of the instruction information using the verification key, and 
   the first control device does not include the verification key.   
     
     
         11 . The verification system according to  claim 10 , wherein
 the software included in the first control device is designed to be rewritable by one or more users, and   the specific administrator includes a provider of the target device that provides the target device to the one or more users.   
     
     
         12 . The verification system according to  claim 11 , wherein
 the second control device is further configured to store user information for identifying each of the one or more users,   the instruction information includes first user information transmitted to the second control device when a first user of the one or more users accesses the first control device, and   the second control device is further configured to:
 execute user verification that is the instruction verification for the first user information based on the user information; and 
 determine that the first user is an authorized user with valid access permission when determining that the first user information is valid. 
   
     
     
         13 . The verification system according to  claim 12 , wherein
 the instruction information further includes cooperation instruction information indicating an instruction to be transmitted to the software from cooperative software cooperating with the software, and   the second control device further configured to:
 store information of cooperation permission for each of the one or more users, the cooperation permission indicating a permissible range of cooperation between the cooperative software and the software; and 
 set the cooperation permission corresponding to the authorized user after the user verification. 
   
     
     
         14 . The verification system according to  claim 13 , wherein
 in a case where the first control device is being accessed by the authorized user and the software receives the cooperation instruction information, the second control device is further configured to determine that the cooperation instruction information is valid when the cooperation instruction information is determined to be valid in the instruction verification and a content of the cooperation instruction information is included in the permissible range indicated by the cooperation permission corresponding to the authorized user.

Join the waitlist — get patent alerts

Track US2025307371A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.